Skip to content

chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) - abandoned#44

Merged
yuzichen12123 merged 1 commit into
alauda-v0.34.1from
renovate/alauda-v0.34.1-aquasec-trivy-0.x
Apr 17, 2026
Merged

chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) - abandoned#44
yuzichen12123 merged 1 commit into
alauda-v0.34.1from
renovate/alauda-v0.34.1-aquasec-trivy-0.x

Conversation

@alaudaa-renovate

@alaudaa-renovate alaudaa-renovate Bot commented Apr 11, 2026

Copy link
Copy Markdown

This PR contains the following updates:

Package Type Update Change
aquasec/trivy (source) final minor 0.67.2 -> 0.69.3

Release Notes

aquasecurity/trivy (aquasec/trivy)

v0.69.3

Compare Source

Changelog
  • 6fb20c8 release: v0.69.3 [release/v0.69] (#​10293)
  • dabefec fix(deps): bump github.com/go-git/go-git/v5 from 5.16.4 to 5.16.5 [backport: release/v0.69] (#​10291)

v0.69.2

Compare Source

Changelog
  • cfa322e release: v0.69.2 [release/v0.69] (#​10266)
  • 86debce fix(deps): bump go.opentelemetry.io/otel/sdk from 1.39.0 to 1.40.0 [backport: release/v0.69] (#​10267)
  • cf3d4cd fix(deps): bump github.com/cloudflare/circl from 1.6.1 to 1.6.3 [backport: release/v0.69] (#​10264)
  • 6dfd3b0 ci: remove apidiff workflow

v0.69.1

Compare Source

v0.69.0

Compare Source

⚠ BREAKING CHANGES
  • misconf: use ID instead of AVDID for providers mapping (#​9752)
Features
Bug Fixes
Performance Improvements
  • misconf: optimize string concatenation in azure scanner (#​9969) (10a50a7)
Code Refactoring
  • misconf: use ID instead of AVDID for providers mapping (#​9752) (6462dc8)

v0.68.2

Compare Source

v0.68.1

Compare Source

Bug Fixes
  • update cosing settings for GoReleaser after bumping cosing to v3 (#​9863) (c7accc8)

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

@alaudaa-renovate alaudaa-renovate Bot added the dependencies Pull requests that update a dependency file label Apr 11, 2026
@alaudabot

alaudabot commented Apr 11, 2026

Copy link
Copy Markdown

🤖 AI Code Review

Property Value
Model opencode/minimax-m2.5-free
Style strict
Issues Found 0
Config Source centralized
Profile ❌ Not Found
Personalized Prompt ❌ No
Prompt Path .github/review/profiles/alaudadevops/harbor-scanner-trivy/pr-review.md
Alauda Skills ✅ base-sample-email-draft, base-skill-setup, builders-component-knowledge, builders-confluence, builders-jira, builders-sample-code-review, connectors-explore, connectors-poc-case, connectors-review, connectors-unit-test, connectors-write-user-docs, devops-autodns, devops-bulk-string-replace, devops-candidate-version-supervisor, devops-docker-keyword-analysis, devops-gen-advanced-form-descriptors, devops-go-vuln-fix, devops-knowledge-adoption, devops-refresh-alauda-tags, devops-sync-alauda-github-releases, devops-tekton-dynamic-form-optimizer, devops-tekton-operator-task-e2e, devops-tekton-task-generator, devops-tekton-task-overview-template, devops-tekton-task-version-upgrade, devops-tekton-upgrade-notes, devops-ui-e2e-code-audit, devops-ui-e2e-fix-base-on-report, devops-ui-e2e-regression-and-fix, devops-ui-generate-e2e-from-feature, devops-ui-pre-setup, devops-update-containerfile-digests, devops-upgrade-go
Reviewed at 2026-04-17 05:37:11 UTC

Summary

This PR updates the Go version from 1.25.8 to 1.26.2 in go.mod. The PR title indicates it was abandoned. Given this is a minor Go version patch within the same major version and there are no code changes beyond the go.mod version bump, the update appears safe and follows standard Go upgrade practices.

Review Statistics

Category Count
Critical Issues 0
Warnings 0
Suggestions 0
Files Reviewed 1

Critical Issues

Issues that MUST be addressed before merging (security, bugs, breaking changes)

None

Warnings

Issues that SHOULD be addressed but are not blocking

None

Suggestions

Recommendations for improvement (nice to have)

None

Positive Feedback

  • The Go version upgrade follows semantic versioning and uses a stable patch release (1.26.2)
  • This is an automated dependency update following project conventions


ℹ️ About this review

This review was automatically generated using the run-actions workflow.

  • Shared prompt: .github/prompts/code-review.md
  • Config source: centralized
  • Profile path: Not Found
  • Profile ref: 70116bce40f93e28716196a4b479fec1049b7950
  • No repository-specific prompt configured
  • Alauda skills: base-sample-email-draft, base-skill-setup, builders-component-knowledge, builders-confluence, builders-jira, builders-sample-code-review, connectors-explore, connectors-poc-case, connectors-review, connectors-unit-test, connectors-write-user-docs, devops-autodns, devops-bulk-string-replace, devops-candidate-version-supervisor, devops-docker-keyword-analysis, devops-gen-advanced-form-descriptors, devops-go-vuln-fix, devops-knowledge-adoption, devops-refresh-alauda-tags, devops-sync-alauda-github-releases, devops-tekton-dynamic-form-optimizer, devops-tekton-operator-task-e2e, devops-tekton-task-generator, devops-tekton-task-overview-template, devops-tekton-task-version-upgrade, devops-tekton-upgrade-notes, devops-ui-e2e-code-audit, devops-ui-e2e-fix-base-on-report, devops-ui-e2e-regression-and-fix, devops-ui-generate-e2e-from-feature, devops-ui-pre-setup, devops-update-containerfile-digests, devops-upgrade-go

@alaudaa-renovate alaudaa-renovate Bot changed the title chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) - autoclosed Apr 12, 2026
@alaudaa-renovate alaudaa-renovate Bot closed this Apr 12, 2026
@alaudaa-renovate alaudaa-renovate Bot deleted the renovate/alauda-v0.34.1-aquasec-trivy-0.x branch April 12, 2026 21:58
@alaudaa-renovate alaudaa-renovate Bot changed the title chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) - autoclosed chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) Apr 16, 2026
@alaudaa-renovate alaudaa-renovate Bot reopened this Apr 16, 2026
@alaudaa-renovate alaudaa-renovate Bot force-pushed the renovate/alauda-v0.34.1-aquasec-trivy-0.x branch from 5d7f34c to 3988ee8 Compare April 16, 2026 17:45

@alaudabot alaudabot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The dependency update looks good. Only a minor suggestion noted in the overview about documenting the version update reason, but that's optional. PR is approved for merge.

@yuzichen12123 yuzichen12123 force-pushed the renovate/alauda-v0.34.1-aquasec-trivy-0.x branch from 3988ee8 to 1697d12 Compare April 17, 2026 05:25
@alaudaa-renovate alaudaa-renovate Bot changed the title chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.34.1) - abandoned Apr 17, 2026
@alaudaa-renovate

Copy link
Copy Markdown
Author

Autoclosing Skipped

This PR has been flagged for autoclosing. However, it is being skipped due to the branch being already modified. Please close/delete it manually or report a bug if you think this is in error.

@yuzichen12123 yuzichen12123 merged commit add2465 into alauda-v0.34.1 Apr 17, 2026
1 of 3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants